General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.
About General Topics
Post a discussion here if you have general questions regarding configuration and troubleshooting for Palo Alto Networks products. Use this forum to collaborate with like-minded security professionals to improve your security posture.

Discussions

Discover LIVEcommunity Through Our New Animated Explainer Video!

 

We’re thrilled to unveil a brand-new animated video that highlights everything LIVEcommunity has to offer! 

 

This short and engaging video gives you a quick tour of the many resources available in our vibrant community — from interactive discussi

...

kiwi_0-1745308399217.png
kiwi by Community Team Member
  • 1994 Views
  • 0 replies
  • 0 Likes

outside to inside nat tcp and udp specific?

i have a situation where outside users will tupe in a public ip which the palo alto will nat it into a inside privtae address like

destination "public" x.x.x.x port udp 8443   >>> translated destination "private" y.y.y.y udp 8443

 

,but when i tired to

...

Capture1.PNG
Capture2.PNG
Capture.PNG
chuckles by L2 Linker
  • 7304 Views
  • 5 replies
  • 0 Likes

Resolved! GlobalProtect with MFA - Always On

I was wondering if anyone here using GlobalProtect with MFA, such as Duo, Okta or Ping.

 

Currently, clients portal app is set to User-Logon (Always On).  I'd like to implement MFA for GP, but also keeping the always on functionality.

 

The question is i

...

MikeC by L3 Networker
  • 15540 Views
  • 11 replies
  • 0 Likes

TAP multiple virtual routers

Has anyone successfully setup a TAP interface on a pair of 5220s with multiple VRs to send the traffic to a single TAP interface/zone?  Trying to integrate a sensor appliance in, but it's not passing any traffic...open to any suggestions at this poin

...

Resolved! two Internetconnection IpSec build

Hello, I have two PAs and want to build IPSec tunnels between them. one PA A has a static IP. The other PA B has two internet connections. One with a static IP and one with a dynamic IP. Now I want to build two tunnels from device B to the A side. my

...

Resolved! Granular URL Monitoring

I want to be able to grab full URLs when specific sites are visited e.g. github so I can see what app/repo is being hit. Right now all I get is the domain.

 

How granular can URL monitoring be? Can I get a full URL from URL filtering or URL category hi

...

mike406 by L2 Linker
  • 6427 Views
  • 6 replies
  • 0 Likes

confused with PA-220 licensing and features

im having difficulty understaing the licensing on palo alto , from the attached pictures do i have the anti-virus , vulnrability protection , anti-spyware , url filtering , file blocking , data filtering and wild fire? or does each of them need a lic

...

licenses.PNG
chuckles by L2 Linker
  • 5273 Views
  • 3 replies
  • 0 Likes

Resolved! PA HA failover and IPSEC connection shows inactive

 

Yesterday during PAN OS upgrade when Passive PA became active I saw that our IPSEC connections stopped working.

 

CLI shows status as inactive

I did clear vpn command

test phase 1 and phase 2 still samething.

 

Only way to make this work was via restartin

...

MP18 by Cyber Elite
  • 13684 Views
  • 6 replies
  • 0 Likes

Mitigating CVE-2019-0624

HI @reaper , @gwesson 

 

I'm seeing the subjected CVE is missing in palo alto vulnerability profile.

 

How can I mitigate this vulnerability. 

 

https://nvd.nist.gov/vuln/detail/CVE-2019-0624


Regards

Venky

Dynamic update release date

Hi Community,

 

Hope somebody can address my below query.

I am able to see the Release date of App&threat version 8146-5421 as 2019-04-25 UTC in both threat vault and support portal( is it actually UTC time??, i am seeing 1-day gap here !),

But my firewa

...

release date in firewall.PNG
Threatvault.PNG
  • 24215 Posts
  • 117 Subscriptions
Top Liked Authors
Labels